Full Disclosure mailing list archives

Re: Linux kernel 0day - dynamite inside, don't burn your fingers


From: Rodrigo Barbosa <rodrigob () darkover org>
Date: Fri, 14 Jul 2006 17:49:20 -0300

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Fri, Jul 14, 2006 at 09:35:17PM +0100, Joanna R. wrote:
Hello,

attached 0day kernel 2.6 local root exploit. This is a new genuine bug, 
unpatched in 2.6.17.4 - don't get confused by prctl inside - it is only used to
change process status.

The code exploits a root race in /proc

have a nice day.

"failed: Exec format error" on CentOS 4.3 (with updates)

- -- 
Rodrigo Barbosa
"Quid quid Latine dictum sit, altum viditur"
"Be excellent to each other ..." - Bill & Ted (Wyld Stallyns)

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (GNU/Linux)

iD8DBQFEuANQpdyWzQ5b5ckRAii4AJ9/FwH3kTaE1SRB5ujhFi5O1W7LPQCgi0H0
9sqxwe+EFPdwRgn7CuonHgY=
=ewuu
-----END PGP SIGNATURE-----

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: